{"cves":[{"id":"CVE-2011-3045","published":"2012-03-20T00:00:00","updated_at":"2025-08-25T20:15:36.038242+00:00","description":"\nInteger signedness error in the png_inflate function in pngrutil.c in\nlibpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and\nother products, allows remote attackers to cause a denial of service\n(application crash) or possibly execute arbitrary code via a crafted PNG\nfile, a different vulnerability than CVE-2011-3026.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"firefox and thunderbird 16 are not affected"}],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://rhn.redhat.com/errata/RHSA-2012-0407.html","https://ubuntu.com/security/notices/USN-1402-1","https://www.cve.org/CVERecord?id=CVE-2011-3045"],"bugs":[""],"patches":{"libpng":["upstream: http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng;a=commit;h=a8c319a2b281af68f7ca0e2f9a28ca57b44ceb2b","upstream: http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng;a=commit;h=13f12476543c4ada693b4cb474039d5cf3389ed1","vendor: https://rhn.redhat.com/errata/RHSA-2012-0407.html"],"firefox":[],"thunderbird":[],"chromium-browser":[]},"tags":{},"packages":[{"name":"chromium-browser","source":"https://ubuntu.com/security/cve?package=chromium-browser","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=chromium-browser","debian":"https://tracker.debian.org/pkg/chromium-browser","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"uses system libpng","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"uses system libpng","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"uses system libpng","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"uses system libpng","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"uses system libpng","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libpng","source":"https://ubuntu.com/security/cve?package=libpng","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libpng","debian":"https://tracker.debian.org/pkg/libpng","statuses":[{"release_codename":"hardy","status":"released","description":"1.2.15~beta5-3ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.2.42-1ubuntu2.4","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.2.44-1ubuntu0.3","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1.2.44-1ubuntu3.3","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1.2.46-3ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.2.46-3ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1402-1"],"notices":[{"id":"USN-1402-1","title":"libpng vulnerability","summary":"libpng could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"After a standard system update you need to restart your session to make all\nthe necessary changes.\n","references":[],"published":"2012-03-22T15:36:50.425075","description":"It was discovered that libpng did not properly process compressed chunks.\nIf a user or automated system using libpng were tricked into opening a\nspecially crafted image, an attacker could exploit this to cause a denial\nof service or execute code with the privileges of the user invoking the\nprogram.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"libpng","version":"1.2.15~beta5-3ubuntu0.6","description":"PNG (Portable Network Graphics) file library","is_source":true},{"name":"libpng12-0","version":"1.2.15~beta5-3ubuntu0.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libpng","version_link":"https://launchpad.net/ubuntu/+source/libpng/1.2.15~beta5-3ubuntu0.6"}],"lucid":[{"name":"libpng","version":"1.2.42-1ubuntu2.4","description":"PNG (Portable Network Graphics) file library","is_source":true},{"name":"libpng12-0","version":"1.2.42-1ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libpng","version_link":"https://launchpad.net/ubuntu/+source/libpng/1.2.42-1ubuntu2.4"}],"maverick":[{"name":"libpng","version":"1.2.44-1ubuntu0.3","description":"PNG (Portable Network Graphics) file library","is_source":true},{"name":"libpng12-0","version":"1.2.44-1ubuntu0.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libpng","version_link":"https://launchpad.net/ubuntu/+source/libpng/1.2.44-1ubuntu0.3"}],"natty":[{"name":"libpng","version":"1.2.44-1ubuntu3.3","description":"PNG (Portable Network Graphics) file library","is_source":true},{"name":"libpng12-0","version":"1.2.44-1ubuntu3.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libpng","version_link":"https://launchpad.net/ubuntu/+source/libpng/1.2.44-1ubuntu3.3"}],"oneiric":[{"name":"libpng","version":"1.2.46-3ubuntu1.2","description":"PNG (Portable Network Graphics) file library","is_source":true},{"name":"libpng12-0","version":"1.2.46-3ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libpng","version_link":"https://launchpad.net/ubuntu/+source/libpng/1.2.46-3ubuntu1.2"}]},"type":"USN","cves_ids":["CVE-2011-3045"]}]},{"id":"CVE-2012-1181","published":"2012-03-19T21:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nfcgid_spawn_ctl.c in the mod_fcgid module 2.3.6 for the Apache HTTP Server\ndoes not recognize the FcgidMaxProcessesPerClass directive for a virtual\nhost, which makes it easier for remote attackers to cause a denial of\nservice (memory consumption) via a series of HTTP requests that triggers a\nprocess count higher than the intended limit.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-1181"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=615814"],"patches":{"libapache2-mod-fcgid":["other: r1037727"]},"tags":{},"packages":[{"name":"libapache2-mod-fcgid","source":"https://ubuntu.com/security/cve?package=libapache2-mod-fcgid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libapache2-mod-fcgid","debian":"https://tracker.debian.org/pkg/libapache2-mod-fcgid","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1:2.3.6-1+squeeze1build0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1:2.3.6-1+squeeze1build0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1:2.3.6-1.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1:2.3.6-1.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1:2.3.6-1.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:2.3.6-1.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1:2.3.6-1.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1039","published":"2012-03-19T19:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple cross-site scripting (XSS) vulnerabilities in Dotclear before\n2.4.2 allow remote attackers to inject arbitrary web script or HTML via the\n(1) login_data parameter to admin/auth.php; (2) nb parameter to\nadmin/blogs.php; (3) type, (4) sortby, (5) order, or (6) status parameters\nto admin/comments.php; or (7) page parameter to admin/plugin.php.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.htbridge.ch/advisory/HTB23074","http://dotclear.org/blog/post/2012/02/11/Dotclear-2.4.2","https://www.cve.org/CVERecord?id=CVE-2012-1039"],"bugs":[""],"patches":{"dotclear":[]},"tags":{},"packages":[{"name":"dotclear","source":"https://ubuntu.com/security/cve?package=dotclear","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=dotclear","debian":"https://tracker.debian.org/pkg/dotclear","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.4.2+dfsg-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-0808","published":"2012-03-19T19:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nas31 2.3.1-4 does not seed the random number generator and generates\npredictable temporary file names, which makes it easier for local users to\ncreate or truncate files via a symlink attack.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-0808"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=655496"],"patches":{"as31":[]},"tags":{},"packages":[{"name":"as31","source":"https://ubuntu.com/security/cve?package=as31","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=as31","debian":"https://tracker.debian.org/pkg/as31","statuses":[{"release_codename":"vivid","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.3.1-5","component":null,"pocket":"security"},{"release_codename":"utopic","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"2.3.1-6","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [2.3.1-6]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-5083","published":"2012-03-19T18:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnrestricted file upload vulnerability in inc/swf/swfupload.swf in Dotclear\n2.3.1 and 2.4.2 allows remote attackers to execute arbitrary code by\nuploading a file with an executable PHP extension, then accessing it via a\ndirect request to the file in an unspecified directory.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"dotclear in Debian does not ship the vulnerable swf file"}],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.exploit-db.com/exploits/18529","http://vigilance.fr/vulnerability/Dotclear-file-upload-via-swfupload-swf-11396","http://cxsecurity.com/issue/WLB-2011090012","https://www.cve.org/CVERecord?id=CVE-2011-5083"],"bugs":[""],"patches":{"dotclear":[]},"tags":{},"packages":[{"name":"dotclear","source":"https://ubuntu.com/security/cve?package=dotclear","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=dotclear","debian":"https://tracker.debian.org/pkg/dotclear","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1776","published":"2012-03-19T16:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple heap-based buffer overflows in VideoLAN VLC media player before\n2.0.1 allow remote attackers to cause a denial of service (application\ncrash) or possibly execute arbitrary code via a crafted Real RTSP stream.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.videolan.org/security/sa1202.html","https://www.cve.org/CVERecord?id=CVE-2012-1776"],"bugs":[""],"patches":{"vlc":[]},"tags":{},"packages":[{"name":"vlc","source":"https://ubuntu.com/security/cve?package=vlc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vlc","debian":"https://tracker.debian.org/pkg/vlc","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.0.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1775","published":"2012-03-19T16:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nStack-based buffer overflow in VideoLAN VLC media player before 2.0.1\nallows remote attackers to execute arbitrary code via a crafted MMS://\nstream.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.videolan.org/security/sa1201.html","https://www.cve.org/CVERecord?id=CVE-2012-1775"],"bugs":[""],"patches":{"vlc":[]},"tags":{"vlc":["stack-protector"]},"packages":[{"name":"vlc","source":"https://ubuntu.com/security/cve?package=vlc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vlc","debian":"https://tracker.debian.org/pkg/vlc","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"2.0.1-4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.0.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1177","published":"2012-03-19T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nlibgdata before 0.10.2 and 0.11.x before 0.11.1 does not validate SSL\ncertificates, which allows remote attackers to obtain user names and\npasswords via a man-in-the-middle (MITM) attack with a spoofed certificate.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/03/14/3","https://ubuntu.com/security/notices/USN-1547-1","https://www.cve.org/CVERecord?id=CVE-2012-1177"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=664032","https://bugs.launchpad.net/ubuntu/+source/libgdata/+bug/938812","https://bugs.launchpad.net/ubuntu/+source/libgdata/+bug/956601","https://bugzilla.gnome.org/show_bug.cgi?id=671535","https://bugzilla.novell.com/show_bug.cgi?id=752088"],"patches":{"libgdata":["other: http://git.gnome.org/browse/libgdata/commit/?id=6799f2c525a584dc998821a6ce897e463dad7840","other: http://git.gnome.org/browse/libgdata/commit/?h=libgdata-0-10&id=8eff8fa9138859e03e58c2aa76600ab63eb5c29c"],"evolution-data-server":[]},"tags":{},"packages":[{"name":"evolution-data-server","source":"https://ubuntu.com/security/cve?package=evolution-data-server","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=evolution-data-server","debian":"https://tracker.debian.org/pkg/evolution-data-server","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.28.3.1-0ubuntu6.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"uses system libgdata","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"uses system libgdata","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"uses system libgdata","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libgdata","source":"https://ubuntu.com/security/cve?package=libgdata","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libgdata","debian":"https://tracker.debian.org/pkg/libgdata","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"0.5.2-0ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"0.8.0-0ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"0.9.1-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"0.11.1-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.10.2-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1547-1"],"notices":[{"id":"USN-1547-1","title":"libGData, evolution-data-server vulnerability","summary":"Applications using GData services could be made to expose sensitive\ninformation over the network.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-08-28T22:20:51.067395","description":"Vreixo Formoso discovered that the libGData library, as used\nby Evolution and other applications, did not properly verify SSL\ncertificates. A remote attacker could exploit this to perform a man\nin the middle attack to view sensitive information or alter data\ntransmitted via the GData protocol.\n","is_hidden":false,"release_packages":{"lucid":[{"name":"libgdata","version":"0.5.2-0ubuntu1.1","description":"Library to access GData services","is_source":true},{"name":"evolution-data-server","version":"2.28.3.1-0ubuntu6.1","description":"Evolution suite data server","is_source":true},{"name":"libgdata1.2-1","version":"2.28.3.1-0ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/evolution-data-server","version_link":"https://launchpad.net/ubuntu/+source/evolution-data-server/2.28.3.1-0ubuntu6.1"},{"name":"libgdata-google1.2-1","version":"2.28.3.1-0ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/evolution-data-server","version_link":"https://launchpad.net/ubuntu/+source/evolution-data-server/2.28.3.1-0ubuntu6.1"},{"name":"libgdata6","version":"0.5.2-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgdata","version_link":"https://launchpad.net/ubuntu/+source/libgdata/0.5.2-0ubuntu1.1"}],"natty":[{"name":"libgdata","version":"0.8.0-0ubuntu1.1","description":"Library to access GData services","is_source":true},{"name":"libgdata11","version":"0.8.0-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgdata","version_link":"https://launchpad.net/ubuntu/+source/libgdata/0.8.0-0ubuntu1.1"}],"oneiric":[{"name":"libgdata","version":"0.9.1-0ubuntu2.1","description":"Library to access GData services","is_source":true},{"name":"libgdata13","version":"0.9.1-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgdata","version_link":"https://launchpad.net/ubuntu/+source/libgdata/0.9.1-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2012-1177"]}]},{"id":"CVE-2012-1511","published":"2012-03-16T20:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nCross-site scripting (XSS) vulnerability in View Manager Portal in VMware\nView before 4.6.1 allows remote attackers to inject arbitrary web script or\nHTML via a crafted URL.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-1511"],"bugs":[""],"patches":{"vmware-view-open-client":[]},"tags":{},"packages":[{"name":"vmware-view-open-client","source":"https://ubuntu.com/security/cve?package=vmware-view-open-client","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vmware-view-open-client","debian":"https://tracker.debian.org/pkg/vmware-view-open-client","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.6.1","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1510","published":"2012-03-16T20:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nBuffer overflow in the WDDM display driver in VMware ESXi 4.0, 4.1, and\n5.0; VMware ESX 4.0 and 4.1; and VMware View before 4.6.1 allows guest OS\nusers to gain guest OS privileges via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-1510"],"bugs":[""],"patches":{"vmware-view-open-client":[]},"tags":{},"packages":[{"name":"vmware-view-open-client","source":"https://ubuntu.com/security/cve?package=vmware-view-open-client","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vmware-view-open-client","debian":"https://tracker.debian.org/pkg/vmware-view-open-client","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.6.1","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1509","published":"2012-03-16T20:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nBuffer overflow in the XPDM display driver in VMware View before 4.6.1\nallows guest OS users to gain guest OS privileges via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-1509"],"bugs":[""],"patches":{"vmware-view-open-client":[]},"tags":{},"packages":[{"name":"vmware-view-open-client","source":"https://ubuntu.com/security/cve?package=vmware-view-open-client","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vmware-view-open-client","debian":"https://tracker.debian.org/pkg/vmware-view-open-client","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.6.1","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1178","published":"2012-03-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe msn_oim_report_to_user function in oim.c in the MSN protocol plugin in\nlibpurple in Pidgin before 2.10.2 allows remote servers to cause a denial\nof service (application crash) via an OIM message that lacks UTF-8\nencoding.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://pidgin.im/news/security/?id=61","https://ubuntu.com/security/notices/USN-1500-1","https://www.cve.org/CVERecord?id=CVE-2012-1178"],"bugs":["http://developer.pidgin.im/ticket/14884","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=664030","https://bugs.launchpad.net/ubuntu/+source/pidgin/+bug/958208"],"patches":{"pidgin":["upstream: http://hg.pidgin.im/pidgin/main/rev/1b1b97b8e942","upstream: http://hg.pidgin.im/pidgin/main/rev/f9eeb175a5c9","upstream: http://hg.pidgin.im/pidgin/main/rev/f5fd49c83637","upstream: http://hg.pidgin.im/pidgin/main/rev/5c02bc93f2c4","upstream: http://hg.pidgin.im/pidgin/main/rev/85ec889f1675"]},"tags":{},"packages":[{"name":"pidgin","source":"https://ubuntu.com/security/cve?package=pidgin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pidgin","debian":"https://tracker.debian.org/pkg/pidgin","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1:2.6.6-1ubuntu4.5","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1:2.7.11-1ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1:2.10.0-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"1:2.10.2-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.10.2-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1500-1"],"notices":[{"id":"USN-1500-1","title":"Pidgin vulnerabilities","summary":"Several security issues were fixed in Pidgin.\n","instructions":"After a standard system update you need to restart Pidgin to make\nall the necessary changes.\n","references":[],"published":"2012-07-09T20:08:17.104482","description":"Evgeny Boger discovered that Pidgin incorrectly handled buddy list messages in\nthe AIM and ICQ protocol handlers. A remote attacker could send a specially\ncrafted message and cause Pidgin to crash, leading to a denial of service. This\nissue only affected Ubuntu 10.04 LTS, 11.04 and 11.10. (CVE-2011-4601)\n\nThijs Alkemade discovered that Pidgin incorrectly handled malformed voice and\nvideo chat requests in the XMPP protocol handler. A remote attacker could send\na specially crafted message and cause Pidgin to crash, leading to a denial of\nservice. This issue only affected Ubuntu 10.04 LTS, 11.04 and 11.10.\n(CVE-2011-4602)\n\nDiego Bauche Madero discovered that Pidgin incorrectly handled UTF-8\nsequences in the SILC protocol handler. A remote attacker could send a\nspecially crafted message and cause Pidgin to crash, leading to a denial\nof service. This issue only affected Ubuntu 10.04 LTS, 11.04 and 11.10.\n(CVE-2011-4603)\n\nJulia Lawall discovered that Pidgin incorrectly cleared memory contents used in\ncryptographic operations. An attacker could exploit this to read the memory\ncontents, leading to an information disclosure. This issue only affected Ubuntu\n10.04 LTS. (CVE-2011-4922)\n\nClemens Huebner and Kevin Stange discovered that Pidgin incorrectly handled\nnickname changes inside chat rooms in the XMPP protocol handler. A remote\nattacker could exploit this by changing nicknames, leading to a denial of\nservice. This issue only affected Ubuntu 11.10. (CVE-2011-4939)\n\nThijs Alkemade discovered that Pidgin incorrectly handled off-line instant\nmessages in the MSN protocol handler. A remote attacker could send a specially\ncrafted message and cause Pidgin to crash, leading to a denial of service. This\nissue only affected Ubuntu 10.04 LTS, 11.04 and 11.10. (CVE-2012-1178)\n\nJosé Valentín Gutiérrez discovered that Pidgin incorrectly handled SOCKS5 proxy\nconnections during file transfer requests in the XMPP protocol handler. A\nremote attacker could send a specially crafted request and cause Pidgin to\ncrash, leading to a denial of service. This issue only affected Ubuntu 12.04\nLTS and 11.10. (CVE-2012-2214)\n\nFabian Yamaguchi discovered that Pidgin incorrectly handled malformed messages\nin the MSN protocol handler. A remote attacker could send a specially crafted\nmessage and cause Pidgin to crash, leading to a denial of service.\n(CVE-2012-2318)\n\nUlf Härnhammar discovered that Pidgin incorrectly handled messages with in-line\nimages in the MXit protocol handler. A remote attacker could send a specially\ncrafted message and possibly execute arbitrary code with user privileges.\n(CVE-2012-3374)\n","is_hidden":false,"release_packages":{"precise":[{"name":"pidgin","version":"1:2.10.3-0ubuntu1.1","description":"graphical multi-protocol instant messaging client for X","is_source":true},{"name":"finch","version":"1:2.10.3-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.3-0ubuntu1.1"},{"name":"pidgin","version":"1:2.10.3-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.3-0ubuntu1.1"},{"name":"libpurple0","version":"1:2.10.3-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.3-0ubuntu1.1"}],"lucid":[{"name":"pidgin","version":"1:2.6.6-1ubuntu4.5","description":"graphical multi-protocol instant messaging client for X","is_source":true},{"name":"finch","version":"1:2.6.6-1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.6-1ubuntu4.5"},{"name":"pidgin","version":"1:2.6.6-1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.6-1ubuntu4.5"},{"name":"libpurple0","version":"1:2.6.6-1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.6-1ubuntu4.5"}],"natty":[{"name":"pidgin","version":"1:2.7.11-1ubuntu2.2","description":"multi-protocol instant messaging client","is_source":true},{"name":"finch","version":"1:2.7.11-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.7.11-1ubuntu2.2"},{"name":"pidgin","version":"1:2.7.11-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.7.11-1ubuntu2.2"},{"name":"libpurple0","version":"1:2.7.11-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.7.11-1ubuntu2.2"}],"oneiric":[{"name":"pidgin","version":"1:2.10.0-0ubuntu2.1","description":"graphical multi-protocol instant messaging client for X","is_source":true},{"name":"finch","version":"1:2.10.0-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.0-0ubuntu2.1"},{"name":"pidgin","version":"1:2.10.0-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.0-0ubuntu2.1"},{"name":"libpurple0","version":"1:2.10.0-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.0-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2011-4601","CVE-2011-4602","CVE-2011-4603","CVE-2011-4922","CVE-2011-4939","CVE-2012-1178","CVE-2012-2214","CVE-2012-2318","CVE-2012-3374"]}]},{"id":"CVE-2012-1165","published":"2012-03-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe mime_param_cmp function in crypto/asn1/asn_mime.c in OpenSSL before\n0.9.8u and 1.x before 1.0.0h allows remote attackers to cause a denial of\nservice (NULL pointer dereference and application crash) via a crafted\nS/MIME message, a different vulnerability than CVE-2006-7250.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"patch assumes 22144 is also applied\nCryptographic Message Syntax was added in 0.9.8h"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1424-1","https://www.cve.org/CVERecord?id=CVE-2012-1165"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=663642"],"patches":{"openssl":["upstream: http://cvs.openssl.org/chngview?cn=22252"],"openssl098":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"hardy","status":"not-affected","description":"0.9.8g-4ubuntu3.15","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"0.9.8k-7ubuntu8.10","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"0.9.8o-5ubuntu1.4","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1.0.0e-2ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.1","component":null,"pocket":"security"}]},{"name":"openssl098","source":"https://ubuntu.com/security/cve?package=openssl098","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl098","debian":"https://tracker.debian.org/pkg/openssl098","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"0.9.8o-7ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1424-1"],"notices":[{"id":"USN-1424-1","title":"OpenSSL vulnerabilities","summary":"An application using OpenSSL could be made to crash or run programs if it\nopened a specially crafted file.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2012-04-19T22:04:27.233639","description":"It was discovered that OpenSSL could be made to dereference a NULL pointer\nwhen processing S/MIME messages. A remote attacker could use this to cause\na denial of service. These issues did not affect Ubuntu 8.04 LTS.\n(CVE-2006-7250, CVE-2012-1165)\n\nTavis Ormandy discovered that OpenSSL did not properly perform bounds\nchecking when processing DER data via BIO or FILE functions. A remote\nattacker could trigger this flaw in services that used SSL to cause a\ndenial of service or possibly execute arbitrary code with application\nprivileges. (CVE-2012-2110)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"openssl","version":"0.9.8g-4ubuntu3.17","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl0.9.8","version":"0.9.8g-4ubuntu3.17","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8g-4ubuntu3.17"}],"lucid":[{"name":"openssl","version":"0.9.8k-7ubuntu8.10","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl0.9.8","version":"0.9.8k-7ubuntu8.10","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8k-7ubuntu8.10"}],"natty":[{"name":"openssl","version":"0.9.8o-5ubuntu1.4","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl0.9.8","version":"0.9.8o-5ubuntu1.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8o-5ubuntu1.4"}],"oneiric":[{"name":"openssl","version":"1.0.0e-2ubuntu4.4","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl1.0.0","version":"1.0.0e-2ubuntu4.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.0e-2ubuntu4.4"}]},"type":"USN","cves_ids":["CVE-2006-7250","CVE-2012-2110","CVE-2012-1165"]}]},{"id":"CVE-2011-4939","published":"2012-03-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe pidgin_conv_chat_rename_user function in gtkconv.c in Pidgin before\n2.10.2 allows remote attackers to cause a denial of service (NULL pointer\ndereference and application crash) by changing a nickname while in an XMPP\nchat room.","ubuntu_description":"","notes":[{"author":"tyhicks","note":"Introduced at some point after 2.7.11"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.pidgin.im/news/security/?id=60","https://ubuntu.com/security/notices/USN-1500-1","https://www.cve.org/CVERecord?id=CVE-2011-4939"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=664028","https://bugs.launchpad.net/ubuntu/+source/pidgin/+bug/958208"],"patches":{"pidgin":["upstream: http://hg.pidgin.im/pidgin/main/rev/92fdfe84de21"]},"tags":{},"packages":[{"name":"pidgin","source":"https://ubuntu.com/security/cve?package=pidgin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pidgin","debian":"https://tracker.debian.org/pkg/pidgin","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1:2.7.11-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1:2.7.11-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1:2.10.0-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"1:2.10.2-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.10.2","component":null,"pocket":"security"}]}],"notices_ids":["USN-1500-1"],"notices":[{"id":"USN-1500-1","title":"Pidgin vulnerabilities","summary":"Several security issues were fixed in Pidgin.\n","instructions":"After a standard system update you need to restart Pidgin to make\nall the necessary changes.\n","references":[],"published":"2012-07-09T20:08:17.104482","description":"Evgeny Boger discovered that Pidgin incorrectly handled buddy list messages in\nthe AIM and ICQ protocol handlers. A remote attacker could send a specially\ncrafted message and cause Pidgin to crash, leading to a denial of service. This\nissue only affected Ubuntu 10.04 LTS, 11.04 and 11.10. (CVE-2011-4601)\n\nThijs Alkemade discovered that Pidgin incorrectly handled malformed voice and\nvideo chat requests in the XMPP protocol handler. A remote attacker could send\na specially crafted message and cause Pidgin to crash, leading to a denial of\nservice. This issue only affected Ubuntu 10.04 LTS, 11.04 and 11.10.\n(CVE-2011-4602)\n\nDiego Bauche Madero discovered that Pidgin incorrectly handled UTF-8\nsequences in the SILC protocol handler. A remote attacker could send a\nspecially crafted message and cause Pidgin to crash, leading to a denial\nof service. This issue only affected Ubuntu 10.04 LTS, 11.04 and 11.10.\n(CVE-2011-4603)\n\nJulia Lawall discovered that Pidgin incorrectly cleared memory contents used in\ncryptographic operations. An attacker could exploit this to read the memory\ncontents, leading to an information disclosure. This issue only affected Ubuntu\n10.04 LTS. (CVE-2011-4922)\n\nClemens Huebner and Kevin Stange discovered that Pidgin incorrectly handled\nnickname changes inside chat rooms in the XMPP protocol handler. A remote\nattacker could exploit this by changing nicknames, leading to a denial of\nservice. This issue only affected Ubuntu 11.10. (CVE-2011-4939)\n\nThijs Alkemade discovered that Pidgin incorrectly handled off-line instant\nmessages in the MSN protocol handler. A remote attacker could send a specially\ncrafted message and cause Pidgin to crash, leading to a denial of service. This\nissue only affected Ubuntu 10.04 LTS, 11.04 and 11.10. (CVE-2012-1178)\n\nJosé Valentín Gutiérrez discovered that Pidgin incorrectly handled SOCKS5 proxy\nconnections during file transfer requests in the XMPP protocol handler. A\nremote attacker could send a specially crafted request and cause Pidgin to\ncrash, leading to a denial of service. This issue only affected Ubuntu 12.04\nLTS and 11.10. (CVE-2012-2214)\n\nFabian Yamaguchi discovered that Pidgin incorrectly handled malformed messages\nin the MSN protocol handler. A remote attacker could send a specially crafted\nmessage and cause Pidgin to crash, leading to a denial of service.\n(CVE-2012-2318)\n\nUlf Härnhammar discovered that Pidgin incorrectly handled messages with in-line\nimages in the MXit protocol handler. A remote attacker could send a specially\ncrafted message and possibly execute arbitrary code with user privileges.\n(CVE-2012-3374)\n","is_hidden":false,"release_packages":{"precise":[{"name":"pidgin","version":"1:2.10.3-0ubuntu1.1","description":"graphical multi-protocol instant messaging client for X","is_source":true},{"name":"finch","version":"1:2.10.3-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.3-0ubuntu1.1"},{"name":"pidgin","version":"1:2.10.3-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.3-0ubuntu1.1"},{"name":"libpurple0","version":"1:2.10.3-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.3-0ubuntu1.1"}],"lucid":[{"name":"pidgin","version":"1:2.6.6-1ubuntu4.5","description":"graphical multi-protocol instant messaging client for X","is_source":true},{"name":"finch","version":"1:2.6.6-1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.6-1ubuntu4.5"},{"name":"pidgin","version":"1:2.6.6-1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.6-1ubuntu4.5"},{"name":"libpurple0","version":"1:2.6.6-1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.6-1ubuntu4.5"}],"natty":[{"name":"pidgin","version":"1:2.7.11-1ubuntu2.2","description":"multi-protocol instant messaging client","is_source":true},{"name":"finch","version":"1:2.7.11-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.7.11-1ubuntu2.2"},{"name":"pidgin","version":"1:2.7.11-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.7.11-1ubuntu2.2"},{"name":"libpurple0","version":"1:2.7.11-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.7.11-1ubuntu2.2"}],"oneiric":[{"name":"pidgin","version":"1:2.10.0-0ubuntu2.1","description":"graphical multi-protocol instant messaging client for X","is_source":true},{"name":"finch","version":"1:2.10.0-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.0-0ubuntu2.1"},{"name":"pidgin","version":"1:2.10.0-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.0-0ubuntu2.1"},{"name":"libpurple0","version":"1:2.10.0-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.10.0-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2011-4601","CVE-2011-4602","CVE-2011-4603","CVE-2011-4922","CVE-2011-4939","CVE-2012-1178","CVE-2012-2214","CVE-2012-2318","CVE-2012-3374"]}]},{"id":"CVE-2012-0463","published":"2012-03-14T19:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe nsWindow implementation in the browser engine in Mozilla Firefox before\n3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird\nbefore 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and\nSeaMonkey before 2.8 does not check the validity of an instance after event\ndispatching, which allows remote attackers to cause a denial of service\n(memory corruption and application crash) or possibly execute arbitrary\ncode via unknown vectors, as demonstrated by Mobile Firefox on Android.","ubuntu_description":"","notes":[{"author":"sbeattie","note":"possibly only affects android versions"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-0463"],"bugs":[""],"patches":{"firefox":[],"xulrunner-1.9.2":[],"xulrunner-2.0":[],"seamonkey":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"11.0+build1-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"11.0+build1-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"seamonkey","source":"https://ubuntu.com/security/cve?package=seamonkey","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=seamonkey","debian":"https://tracker.debian.org/pkg/seamonkey","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.1.20","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.2","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.2","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.2","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-2.0","source":"https://ubuntu.com/security/cve?package=xulrunner-2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-2.0","debian":"https://tracker.debian.org/pkg/xulrunner-2.0","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-0454","published":"2012-03-14T19:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUse-after-free vulnerability in Mozilla Firefox 4.x through 10.0, Firefox\nESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x\nbefore 10.0.3, and SeaMonkey before 2.8 on 32-bit Windows 7 platforms\nallows remote attackers to cause a denial of service (application crash) or\npossibly execute arbitrary code via vectors involving use of the file-open\ndialog in a child window, related to the IUnknown_QueryService function in\nthe Windows shlwapi.dll library.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-0454"],"bugs":[""],"patches":{"firefox":[],"xulrunner-1.9.2":[],"xulrunner-2.0":[],"seamonkey":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"seamonkey","source":"https://ubuntu.com/security/cve?package=seamonkey","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=seamonkey","debian":"https://tracker.debian.org/pkg/seamonkey","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.2","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.2","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.2","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"windows only","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-2.0","source":"https://ubuntu.com/security/cve?package=xulrunner-2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-2.0","debian":"https://tracker.debian.org/pkg/xulrunner-2.0","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-0464","published":"2012-03-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUse-after-free vulnerability in the browser engine in Mozilla Firefox\nbefore 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3,\nThunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before\n10.0.3, and SeaMonkey before 2.8 allows remote attackers to execute\narbitrary code via vectors involving an empty argument to the array.join\nfunction in conjunction with the triggering of garbage collection.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1400-1","https://ubuntu.com/security/notices/USN-1401-1","https://ubuntu.com/security/notices/USN-1400-3","https://ubuntu.com/security/notices/USN-1401-2","https://www.cve.org/CVERecord?id=CVE-2012-0464"],"bugs":[""],"patches":{"firefox":[],"xulrunner-1.9.2":[],"xulrunner-2.0":[],"seamonkey":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"11.0+build1-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"11.0+build1-0ubuntu0.10.10.2","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"11.0+build1-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"seamonkey","source":"https://ubuntu.com/security/cve?package=seamonkey","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=seamonkey","debian":"https://tracker.debian.org/pkg/seamonkey","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"3.1.20+build1+nobinonly-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"3.1.20+build1+nobinonly-0ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"3.1.20+build1+nobinonly-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.2","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.2","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.2","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1.9.2.28+build1+nobinonly-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-2.0","source":"https://ubuntu.com/security/cve?package=xulrunner-2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-2.0","debian":"https://tracker.debian.org/pkg/xulrunner-2.0","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1401-2","USN-1401-1","USN-1400-1","USN-1400-3"],"notices":[{"id":"USN-1401-2","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/953720"],"published":"2012-03-23T09:57:19.984157","description":"USN-1401-1 fixed vulnerabilities in Xulrunner. This update provides the\ncorresponding fixes for Thunderbird.\n\nOriginal advisory details:\n\n It was discovered that a flaw in the Mozilla SVG implementation could\n result in an out-of-bounds memory access if SVG elements were removed\n during a DOMAttrModified event handler. If the user were tricked into\n opening a specially crafted page, an attacker could exploit this to cause a\n denial of service via application crash. (CVE-2011-3658)\n \n Atte Kettunen discovered a use-after-free vulnerability in the Gecko\n Rendering Engine's handling of SVG animations. An attacker could\n potentially exploit this to execute arbitrary code with the privileges of\n the user invoking the Xulrunner based application. (CVE-2012-0457)\n \n Atte Kettunen discovered an out of bounds read vulnerability in the Gecko\n Rendering Engine's handling of SVG Filters. An attacker could potentially\n exploit this to make data from the user's memory accessible to the page\n content. (CVE-2012-0456)\n \n Soroush Dalili discovered that the Gecko Rendering Engine did not\n adequately protect against dropping JavaScript links onto a frame. A remote\n attacker could, through cross-site scripting (XSS), exploit this to modify\n the contents of the frame or steal confidential data. (CVE-2012-0455)\n \n Mariusz Mlynski discovered that the Home button accepted JavaScript links\n to set the browser Home page. An attacker could use this vulnerability to\n get the script URL loaded in the privileged about:sessionrestore context.\n (CVE-2012-0458)\n \n Bob Clary, Vincenzo Iozzo, and Willem Pinckaers discovered memory safety\n issues affecting Firefox. If the user were tricked into opening a specially\n crafted page, an attacker could exploit these to cause a denial of service\n via application crash, or potentially execute code with the privileges of\n the user invoking Firefox. (CVE-2012-0461, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/3.1.20+build1+nobinonly-0ubuntu0.10.04.1"}],"maverick":[{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/3.1.20+build1+nobinonly-0ubuntu0.10.10.1"}],"natty":[{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.11.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/3.1.20+build1+nobinonly-0ubuntu0.11.04.1"}]},"type":"USN","cves_ids":["CVE-2011-3658","CVE-2012-0457","CVE-2012-0456","CVE-2012-0455","CVE-2012-0458","CVE-2012-0461","CVE-2012-0464"]},{"id":"USN-1401-1","title":"Xulrunner vulnerabilities","summary":"Several security issues were fixed in Firefox.\n","instructions":"After a standard system update you need to restart any application based on\nXulrunner such as Yelp or Conkeror to make all the necessary changes.\n","references":["https://launchpad.net/bugs/953736"],"published":"2012-03-19T08:32:52.090550","description":"It was discovered that a flaw in the Mozilla SVG implementation could\nresult in an out-of-bounds memory access if SVG elements were removed\nduring a DOMAttrModified event handler. If the user were tricked into\nopening a specially crafted page, an attacker could exploit this to cause a\ndenial of service via application crash. (CVE-2011-3658)\n\nAtte Kettunen discovered a use-after-free vulnerability in the Gecko\nRendering Engine's handling of SVG animations. An attacker could\npotentially exploit this to execute arbitrary code with the privileges of\nthe user invoking the Xulrunner based application. (CVE-2012-0457)\n \nAtte Kettunen discovered an out of bounds read vulnerability in the Gecko\nRendering Engine's handling of SVG Filters. An attacker could potentially\nexploit this to make data from the user's memory accessible to the page\ncontent. (CVE-2012-0456)\n\nSoroush Dalili discovered that the Gecko Rendering Engine did not\nadequately protect against dropping JavaScript links onto a frame. A remote\nattacker could, through cross-site scripting (XSS), exploit this to modify\nthe contents of the frame or steal confidential data. (CVE-2012-0455)\n\nMariusz Mlynski discovered that the Home button accepted JavaScript links\nto set the browser Home page. An attacker could use this vulnerability to\nget the script URL loaded in the privileged about:sessionrestore context.\n(CVE-2012-0458)\n\nBob Clary, Vincenzo Iozzo, and Willem Pinckaers discovered memory safety\nissues affecting Firefox. If the user were tricked into opening a specially\ncrafted page, an attacker could exploit these to cause a denial of service\nvia application crash, or potentially execute code with the privileges of\nthe user invoking Firefox. (CVE-2012-0461, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1","description":"Mozilla Gecko runtime environment","is_source":true},{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2/1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1"}],"maverick":[{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1","description":"Mozilla Gecko runtime environment","is_source":true},{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2/1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3658","CVE-2012-0457","CVE-2012-0456","CVE-2012-0455","CVE-2012-0458","CVE-2012-0461","CVE-2012-0464"]},{"id":"USN-1400-1","title":"Firefox vulnerabilities","summary":"Several security issues were fixed in Firefox.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951250"],"published":"2012-03-16T20:55:20.092856","description":"Soroush Dalili discovered that Firefox did not adequately protect against\ndropping JavaScript links onto a frame. A remote attacker could, through\ncross-site scripting (XSS), exploit this to modify the contents or steal\nconfidential data. (CVE-2012-0455)\n\nAtte Kettunen discovered a use-after-free vulnerability in Firefox's\nhandling of SVG animations. An attacker could potentially exploit this to\nexecute arbitrary code with the privileges of the user invoking Firefox.\n(CVE-2012-0457)\n\nAtte Kettunen discovered an out of bounds read vulnerability in Firefox's\nhandling of SVG Filters. An attacker could potentially exploit this to make\ndata from the user's memory accessible to the page content. (CVE-2012-0456)\n\nMike Brooks discovered that using carriage return line feed (CRLF)\ninjection, one could introduce a new Content Security Policy (CSP) rule\nwhich allows for cross-site scripting (XSS) on sites with a separate header\ninjection vulnerability. With cross-site scripting vulnerabilities, if a\nuser were tricked into viewing a specially crafted page, a remote attacker\ncould exploit this to modify the contents, or steal confidential data,\nwithin the same domain. (CVE-2012-0451)\n\nMariusz Mlynski discovered that the Home button accepted JavaScript links\nto set the browser Home page. An attacker could use this vulnerability to\nget the script URL loaded in the privileged about:sessionrestore context.\n(CVE-2012-0458)\n\nDaniel Glazman discovered that the Cascading Style Sheets (CSS)\nimplementation is vulnerable to crashing due to modification of a keyframe\nfollowed by access to the cssText of the keyframe. If the user were tricked\ninto opening a specially crafted web page, an attacker could exploit this\nto cause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0459)\n\nMatt Brubeck discovered that Firefox did not properly restrict access to\nthe window.fullScreen object. If the user were tricked into opening a\nspecially crafted web page, an attacker could potentially use this\nvulnerability to spoof the user interface. (CVE-2012-0460)\n\nBob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\nAnderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\nmemory safety issues affecting Firefox. If the user were tricked into\nopening a specially crafted page, an attacker could exploit these to\ncause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0461,\nCVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.04.2"}],"maverick":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.10.2"}],"natty":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.04.1"}],"oneiric":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]},{"id":"USN-1400-3","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951262"],"published":"2012-03-21T22:47:16.577062","description":"USN-1400-1 fixed vulnerabilities in Firefox. This update provides the\ncorresponding fixes for Thunderbird.\n\nOriginal advisory details:\n\n Soroush Dalili discovered that Firefox did not adequately protect against\n dropping JavaScript links onto a frame. A remote attacker could, through\n cross-site scripting (XSS), exploit this to modify the contents or steal\n confidential data. (CVE-2012-0455)\n \n Atte Kettunen discovered a use-after-free vulnerability in Firefox's\n handling of SVG animations. An attacker could potentially exploit this to\n execute arbitrary code with the privileges of the user invoking Firefox.\n (CVE-2012-0457)\n \n Atte Kettunen discovered an out of bounds read vulnerability in Firefox's\n handling of SVG Filters. An attacker could potentially exploit this to make\n data from the user's memory accessible to the page content. (CVE-2012-0456)\n \n Mike Brooks discovered that using carriage return line feed (CRLF)\n injection, one could introduce a new Content Security Policy (CSP) rule\n which allows for cross-site scripting (XSS) on sites with a separate header\n injection vulnerability. With cross-site scripting vulnerabilities, if a\n user were tricked into viewing a specially crafted page, a remote attacker\n could exploit this to modify the contents, or steal confidential data,\n within the same domain. (CVE-2012-0451)\n \n Mariusz Mlynski discovered that the Home button accepted JavaScript links\n to set the browser Home page. An attacker could use this vulnerability to\n get the script URL loaded in the privileged about:sessionrestore context.\n (CVE-2012-0458)\n \n Daniel Glazman discovered that the Cascading Style Sheets (CSS)\n implementation is vulnerable to crashing due to modification of a keyframe\n followed by access to the cssText of the keyframe. If the user were tricked\n into opening a specially crafted web page, an attacker could exploit this\n to cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0459)\n \n Matt Brubeck discovered that Firefox did not properly restrict access to\n the window.fullScreen object. If the user were tricked into opening a\n specially crafted web page, an attacker could potentially use this\n vulnerability to spoof the user interface. (CVE-2012-0460)\n \n Bob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\n Anderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\n memory safety issues affecting Firefox. If the user were tricked into\n opening a specially crafted page, an attacker could exploit these to\n cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0461,\n CVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"oneiric":[{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0456","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]}]},{"id":"CVE-2012-0462","published":"2012-03-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple unspecified vulnerabilities in the browser engine in Mozilla\nFirefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0\nthrough 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8\nallow remote attackers to cause a denial of service (memory corruption and\napplication crash) or possibly execute arbitrary code via unknown vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1400-1","https://ubuntu.com/security/notices/USN-1400-3","https://www.cve.org/CVERecord?id=CVE-2012-0462"],"bugs":[""],"patches":{"firefox":[],"xulrunner-1.9.2":[],"xulrunner-2.0":[],"seamonkey":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"11.0+build1-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"11.0+build1-0ubuntu0.10.10.2","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"11.0+build1-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"seamonkey","source":"https://ubuntu.com/security/cve?package=seamonkey","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=seamonkey","debian":"https://tracker.debian.org/pkg/seamonkey","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.2","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.2","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.2","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-2.0","source":"https://ubuntu.com/security/cve?package=xulrunner-2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-2.0","debian":"https://tracker.debian.org/pkg/xulrunner-2.0","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1400-1","USN-1400-3"],"notices":[{"id":"USN-1400-1","title":"Firefox vulnerabilities","summary":"Several security issues were fixed in Firefox.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951250"],"published":"2012-03-16T20:55:20.092856","description":"Soroush Dalili discovered that Firefox did not adequately protect against\ndropping JavaScript links onto a frame. A remote attacker could, through\ncross-site scripting (XSS), exploit this to modify the contents or steal\nconfidential data. (CVE-2012-0455)\n\nAtte Kettunen discovered a use-after-free vulnerability in Firefox's\nhandling of SVG animations. An attacker could potentially exploit this to\nexecute arbitrary code with the privileges of the user invoking Firefox.\n(CVE-2012-0457)\n\nAtte Kettunen discovered an out of bounds read vulnerability in Firefox's\nhandling of SVG Filters. An attacker could potentially exploit this to make\ndata from the user's memory accessible to the page content. (CVE-2012-0456)\n\nMike Brooks discovered that using carriage return line feed (CRLF)\ninjection, one could introduce a new Content Security Policy (CSP) rule\nwhich allows for cross-site scripting (XSS) on sites with a separate header\ninjection vulnerability. With cross-site scripting vulnerabilities, if a\nuser were tricked into viewing a specially crafted page, a remote attacker\ncould exploit this to modify the contents, or steal confidential data,\nwithin the same domain. (CVE-2012-0451)\n\nMariusz Mlynski discovered that the Home button accepted JavaScript links\nto set the browser Home page. An attacker could use this vulnerability to\nget the script URL loaded in the privileged about:sessionrestore context.\n(CVE-2012-0458)\n\nDaniel Glazman discovered that the Cascading Style Sheets (CSS)\nimplementation is vulnerable to crashing due to modification of a keyframe\nfollowed by access to the cssText of the keyframe. If the user were tricked\ninto opening a specially crafted web page, an attacker could exploit this\nto cause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0459)\n\nMatt Brubeck discovered that Firefox did not properly restrict access to\nthe window.fullScreen object. If the user were tricked into opening a\nspecially crafted web page, an attacker could potentially use this\nvulnerability to spoof the user interface. (CVE-2012-0460)\n\nBob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\nAnderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\nmemory safety issues affecting Firefox. If the user were tricked into\nopening a specially crafted page, an attacker could exploit these to\ncause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0461,\nCVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.04.2"}],"maverick":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.10.2"}],"natty":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.04.1"}],"oneiric":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]},{"id":"USN-1400-3","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951262"],"published":"2012-03-21T22:47:16.577062","description":"USN-1400-1 fixed vulnerabilities in Firefox. This update provides the\ncorresponding fixes for Thunderbird.\n\nOriginal advisory details:\n\n Soroush Dalili discovered that Firefox did not adequately protect against\n dropping JavaScript links onto a frame. A remote attacker could, through\n cross-site scripting (XSS), exploit this to modify the contents or steal\n confidential data. (CVE-2012-0455)\n \n Atte Kettunen discovered a use-after-free vulnerability in Firefox's\n handling of SVG animations. An attacker could potentially exploit this to\n execute arbitrary code with the privileges of the user invoking Firefox.\n (CVE-2012-0457)\n \n Atte Kettunen discovered an out of bounds read vulnerability in Firefox's\n handling of SVG Filters. An attacker could potentially exploit this to make\n data from the user's memory accessible to the page content. (CVE-2012-0456)\n \n Mike Brooks discovered that using carriage return line feed (CRLF)\n injection, one could introduce a new Content Security Policy (CSP) rule\n which allows for cross-site scripting (XSS) on sites with a separate header\n injection vulnerability. With cross-site scripting vulnerabilities, if a\n user were tricked into viewing a specially crafted page, a remote attacker\n could exploit this to modify the contents, or steal confidential data,\n within the same domain. (CVE-2012-0451)\n \n Mariusz Mlynski discovered that the Home button accepted JavaScript links\n to set the browser Home page. An attacker could use this vulnerability to\n get the script URL loaded in the privileged about:sessionrestore context.\n (CVE-2012-0458)\n \n Daniel Glazman discovered that the Cascading Style Sheets (CSS)\n implementation is vulnerable to crashing due to modification of a keyframe\n followed by access to the cssText of the keyframe. If the user were tricked\n into opening a specially crafted web page, an attacker could exploit this\n to cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0459)\n \n Matt Brubeck discovered that Firefox did not properly restrict access to\n the window.fullScreen object. If the user were tricked into opening a\n specially crafted web page, an attacker could potentially use this\n vulnerability to spoof the user interface. (CVE-2012-0460)\n \n Bob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\n Anderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\n memory safety issues affecting Firefox. If the user were tricked into\n opening a specially crafted page, an attacker could exploit these to\n cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0461,\n CVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"oneiric":[{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0456","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]}]},{"id":"CVE-2012-0461","published":"2012-03-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple unspecified vulnerabilities in the browser engine in Mozilla\nFirefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3,\nThunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before\n10.0.3, and SeaMonkey before 2.8 allow remote attackers to cause a denial\nof service (memory corruption and application crash) or possibly execute\narbitrary code via unknown vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1400-1","https://ubuntu.com/security/notices/USN-1401-1","https://ubuntu.com/security/notices/USN-1400-3","https://ubuntu.com/security/notices/USN-1401-2","https://www.cve.org/CVERecord?id=CVE-2012-0461"],"bugs":[""],"patches":{"firefox":[],"xulrunner-1.9.2":[],"xulrunner-2.0":[],"seamonkey":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"11.0+build1-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"11.0+build1-0ubuntu0.10.10.2","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"11.0+build1-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"seamonkey","source":"https://ubuntu.com/security/cve?package=seamonkey","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=seamonkey","debian":"https://tracker.debian.org/pkg/seamonkey","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"3.1.20+build1+nobinonly-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"3.1.20+build1+nobinonly-0ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"3.1.20+build1+nobinonly-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.2","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.2","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.2","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1.9.2.28+build1+nobinonly-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-2.0","source":"https://ubuntu.com/security/cve?package=xulrunner-2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-2.0","debian":"https://tracker.debian.org/pkg/xulrunner-2.0","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1401-2","USN-1401-1","USN-1400-1","USN-1400-3"],"notices":[{"id":"USN-1401-2","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/953720"],"published":"2012-03-23T09:57:19.984157","description":"USN-1401-1 fixed vulnerabilities in Xulrunner. This update provides the\ncorresponding fixes for Thunderbird.\n\nOriginal advisory details:\n\n It was discovered that a flaw in the Mozilla SVG implementation could\n result in an out-of-bounds memory access if SVG elements were removed\n during a DOMAttrModified event handler. If the user were tricked into\n opening a specially crafted page, an attacker could exploit this to cause a\n denial of service via application crash. (CVE-2011-3658)\n \n Atte Kettunen discovered a use-after-free vulnerability in the Gecko\n Rendering Engine's handling of SVG animations. An attacker could\n potentially exploit this to execute arbitrary code with the privileges of\n the user invoking the Xulrunner based application. (CVE-2012-0457)\n \n Atte Kettunen discovered an out of bounds read vulnerability in the Gecko\n Rendering Engine's handling of SVG Filters. An attacker could potentially\n exploit this to make data from the user's memory accessible to the page\n content. (CVE-2012-0456)\n \n Soroush Dalili discovered that the Gecko Rendering Engine did not\n adequately protect against dropping JavaScript links onto a frame. A remote\n attacker could, through cross-site scripting (XSS), exploit this to modify\n the contents of the frame or steal confidential data. (CVE-2012-0455)\n \n Mariusz Mlynski discovered that the Home button accepted JavaScript links\n to set the browser Home page. An attacker could use this vulnerability to\n get the script URL loaded in the privileged about:sessionrestore context.\n (CVE-2012-0458)\n \n Bob Clary, Vincenzo Iozzo, and Willem Pinckaers discovered memory safety\n issues affecting Firefox. If the user were tricked into opening a specially\n crafted page, an attacker could exploit these to cause a denial of service\n via application crash, or potentially execute code with the privileges of\n the user invoking Firefox. (CVE-2012-0461, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/3.1.20+build1+nobinonly-0ubuntu0.10.04.1"}],"maverick":[{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/3.1.20+build1+nobinonly-0ubuntu0.10.10.1"}],"natty":[{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.11.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"3.1.20+build1+nobinonly-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/3.1.20+build1+nobinonly-0ubuntu0.11.04.1"}]},"type":"USN","cves_ids":["CVE-2011-3658","CVE-2012-0457","CVE-2012-0456","CVE-2012-0455","CVE-2012-0458","CVE-2012-0461","CVE-2012-0464"]},{"id":"USN-1401-1","title":"Xulrunner vulnerabilities","summary":"Several security issues were fixed in Firefox.\n","instructions":"After a standard system update you need to restart any application based on\nXulrunner such as Yelp or Conkeror to make all the necessary changes.\n","references":["https://launchpad.net/bugs/953736"],"published":"2012-03-19T08:32:52.090550","description":"It was discovered that a flaw in the Mozilla SVG implementation could\nresult in an out-of-bounds memory access if SVG elements were removed\nduring a DOMAttrModified event handler. If the user were tricked into\nopening a specially crafted page, an attacker could exploit this to cause a\ndenial of service via application crash. (CVE-2011-3658)\n\nAtte Kettunen discovered a use-after-free vulnerability in the Gecko\nRendering Engine's handling of SVG animations. An attacker could\npotentially exploit this to execute arbitrary code with the privileges of\nthe user invoking the Xulrunner based application. (CVE-2012-0457)\n \nAtte Kettunen discovered an out of bounds read vulnerability in the Gecko\nRendering Engine's handling of SVG Filters. An attacker could potentially\nexploit this to make data from the user's memory accessible to the page\ncontent. (CVE-2012-0456)\n\nSoroush Dalili discovered that the Gecko Rendering Engine did not\nadequately protect against dropping JavaScript links onto a frame. A remote\nattacker could, through cross-site scripting (XSS), exploit this to modify\nthe contents of the frame or steal confidential data. (CVE-2012-0455)\n\nMariusz Mlynski discovered that the Home button accepted JavaScript links\nto set the browser Home page. An attacker could use this vulnerability to\nget the script URL loaded in the privileged about:sessionrestore context.\n(CVE-2012-0458)\n\nBob Clary, Vincenzo Iozzo, and Willem Pinckaers discovered memory safety\nissues affecting Firefox. If the user were tricked into opening a specially\ncrafted page, an attacker could exploit these to cause a denial of service\nvia application crash, or potentially execute code with the privileges of\nthe user invoking Firefox. (CVE-2012-0461, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1","description":"Mozilla Gecko runtime environment","is_source":true},{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2/1.9.2.28+build1+nobinonly-0ubuntu0.10.04.1"}],"maverick":[{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1","description":"Mozilla Gecko runtime environment","is_source":true},{"name":"xulrunner-1.9.2","version":"1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.2/1.9.2.28+build1+nobinonly-0ubuntu0.10.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3658","CVE-2012-0457","CVE-2012-0456","CVE-2012-0455","CVE-2012-0458","CVE-2012-0461","CVE-2012-0464"]},{"id":"USN-1400-1","title":"Firefox vulnerabilities","summary":"Several security issues were fixed in Firefox.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951250"],"published":"2012-03-16T20:55:20.092856","description":"Soroush Dalili discovered that Firefox did not adequately protect against\ndropping JavaScript links onto a frame. A remote attacker could, through\ncross-site scripting (XSS), exploit this to modify the contents or steal\nconfidential data. (CVE-2012-0455)\n\nAtte Kettunen discovered a use-after-free vulnerability in Firefox's\nhandling of SVG animations. An attacker could potentially exploit this to\nexecute arbitrary code with the privileges of the user invoking Firefox.\n(CVE-2012-0457)\n\nAtte Kettunen discovered an out of bounds read vulnerability in Firefox's\nhandling of SVG Filters. An attacker could potentially exploit this to make\ndata from the user's memory accessible to the page content. (CVE-2012-0456)\n\nMike Brooks discovered that using carriage return line feed (CRLF)\ninjection, one could introduce a new Content Security Policy (CSP) rule\nwhich allows for cross-site scripting (XSS) on sites with a separate header\ninjection vulnerability. With cross-site scripting vulnerabilities, if a\nuser were tricked into viewing a specially crafted page, a remote attacker\ncould exploit this to modify the contents, or steal confidential data,\nwithin the same domain. (CVE-2012-0451)\n\nMariusz Mlynski discovered that the Home button accepted JavaScript links\nto set the browser Home page. An attacker could use this vulnerability to\nget the script URL loaded in the privileged about:sessionrestore context.\n(CVE-2012-0458)\n\nDaniel Glazman discovered that the Cascading Style Sheets (CSS)\nimplementation is vulnerable to crashing due to modification of a keyframe\nfollowed by access to the cssText of the keyframe. If the user were tricked\ninto opening a specially crafted web page, an attacker could exploit this\nto cause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0459)\n\nMatt Brubeck discovered that Firefox did not properly restrict access to\nthe window.fullScreen object. If the user were tricked into opening a\nspecially crafted web page, an attacker could potentially use this\nvulnerability to spoof the user interface. (CVE-2012-0460)\n\nBob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\nAnderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\nmemory safety issues affecting Firefox. If the user were tricked into\nopening a specially crafted page, an attacker could exploit these to\ncause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0461,\nCVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.04.2"}],"maverick":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.10.2"}],"natty":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.04.1"}],"oneiric":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]},{"id":"USN-1400-3","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951262"],"published":"2012-03-21T22:47:16.577062","description":"USN-1400-1 fixed vulnerabilities in Firefox. This update provides the\ncorresponding fixes for Thunderbird.\n\nOriginal advisory details:\n\n Soroush Dalili discovered that Firefox did not adequately protect against\n dropping JavaScript links onto a frame. A remote attacker could, through\n cross-site scripting (XSS), exploit this to modify the contents or steal\n confidential data. (CVE-2012-0455)\n \n Atte Kettunen discovered a use-after-free vulnerability in Firefox's\n handling of SVG animations. An attacker could potentially exploit this to\n execute arbitrary code with the privileges of the user invoking Firefox.\n (CVE-2012-0457)\n \n Atte Kettunen discovered an out of bounds read vulnerability in Firefox's\n handling of SVG Filters. An attacker could potentially exploit this to make\n data from the user's memory accessible to the page content. (CVE-2012-0456)\n \n Mike Brooks discovered that using carriage return line feed (CRLF)\n injection, one could introduce a new Content Security Policy (CSP) rule\n which allows for cross-site scripting (XSS) on sites with a separate header\n injection vulnerability. With cross-site scripting vulnerabilities, if a\n user were tricked into viewing a specially crafted page, a remote attacker\n could exploit this to modify the contents, or steal confidential data,\n within the same domain. (CVE-2012-0451)\n \n Mariusz Mlynski discovered that the Home button accepted JavaScript links\n to set the browser Home page. An attacker could use this vulnerability to\n get the script URL loaded in the privileged about:sessionrestore context.\n (CVE-2012-0458)\n \n Daniel Glazman discovered that the Cascading Style Sheets (CSS)\n implementation is vulnerable to crashing due to modification of a keyframe\n followed by access to the cssText of the keyframe. If the user were tricked\n into opening a specially crafted web page, an attacker could exploit this\n to cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0459)\n \n Matt Brubeck discovered that Firefox did not properly restrict access to\n the window.fullScreen object. If the user were tricked into opening a\n specially crafted web page, an attacker could potentially use this\n vulnerability to spoof the user interface. (CVE-2012-0460)\n \n Bob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\n Anderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\n memory safety issues affecting Firefox. If the user were tricked into\n opening a specially crafted page, an attacker could exploit these to\n cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0461,\n CVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"oneiric":[{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0456","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]}]},{"id":"CVE-2012-0460","published":"2012-03-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3,\nThunderbird 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and\nSeaMonkey before 2.8 do not properly restrict write access to the\nwindow.fullScreen object, which allows remote attackers to spoof the user\ninterface via a crafted web page.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1400-1","https://ubuntu.com/security/notices/USN-1400-3","https://www.cve.org/CVERecord?id=CVE-2012-0460"],"bugs":[""],"patches":{"firefox":[],"xulrunner-1.9.2":[],"xulrunner-2.0":[],"seamonkey":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"11.0+build1-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"11.0+build1-0ubuntu0.10.10.2","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"11.0+build1-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"seamonkey","source":"https://ubuntu.com/security/cve?package=seamonkey","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=seamonkey","debian":"https://tracker.debian.org/pkg/seamonkey","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"11.0+build1-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.2","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.2","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.2","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-2.0","source":"https://ubuntu.com/security/cve?package=xulrunner-2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-2.0","debian":"https://tracker.debian.org/pkg/xulrunner-2.0","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1400-1","USN-1400-3"],"notices":[{"id":"USN-1400-1","title":"Firefox vulnerabilities","summary":"Several security issues were fixed in Firefox.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951250"],"published":"2012-03-16T20:55:20.092856","description":"Soroush Dalili discovered that Firefox did not adequately protect against\ndropping JavaScript links onto a frame. A remote attacker could, through\ncross-site scripting (XSS), exploit this to modify the contents or steal\nconfidential data. (CVE-2012-0455)\n\nAtte Kettunen discovered a use-after-free vulnerability in Firefox's\nhandling of SVG animations. An attacker could potentially exploit this to\nexecute arbitrary code with the privileges of the user invoking Firefox.\n(CVE-2012-0457)\n\nAtte Kettunen discovered an out of bounds read vulnerability in Firefox's\nhandling of SVG Filters. An attacker could potentially exploit this to make\ndata from the user's memory accessible to the page content. (CVE-2012-0456)\n\nMike Brooks discovered that using carriage return line feed (CRLF)\ninjection, one could introduce a new Content Security Policy (CSP) rule\nwhich allows for cross-site scripting (XSS) on sites with a separate header\ninjection vulnerability. With cross-site scripting vulnerabilities, if a\nuser were tricked into viewing a specially crafted page, a remote attacker\ncould exploit this to modify the contents, or steal confidential data,\nwithin the same domain. (CVE-2012-0451)\n\nMariusz Mlynski discovered that the Home button accepted JavaScript links\nto set the browser Home page. An attacker could use this vulnerability to\nget the script URL loaded in the privileged about:sessionrestore context.\n(CVE-2012-0458)\n\nDaniel Glazman discovered that the Cascading Style Sheets (CSS)\nimplementation is vulnerable to crashing due to modification of a keyframe\nfollowed by access to the cssText of the keyframe. If the user were tricked\ninto opening a specially crafted web page, an attacker could exploit this\nto cause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0459)\n\nMatt Brubeck discovered that Firefox did not properly restrict access to\nthe window.fullScreen object. If the user were tricked into opening a\nspecially crafted web page, an attacker could potentially use this\nvulnerability to spoof the user interface. (CVE-2012-0460)\n\nBob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\nAnderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\nmemory safety issues affecting Firefox. If the user were tricked into\nopening a specially crafted page, an attacker could exploit these to\ncause a denial of service via application crash, or potentially execute\ncode with the privileges of the user invoking Firefox. (CVE-2012-0461,\nCVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.04.2"}],"maverick":[{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.10.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.10.10.2"}],"natty":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.04.1"}],"oneiric":[{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]},{"id":"USN-1400-3","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/951262"],"published":"2012-03-21T22:47:16.577062","description":"USN-1400-1 fixed vulnerabilities in Firefox. This update provides the\ncorresponding fixes for Thunderbird.\n\nOriginal advisory details:\n\n Soroush Dalili discovered that Firefox did not adequately protect against\n dropping JavaScript links onto a frame. A remote attacker could, through\n cross-site scripting (XSS), exploit this to modify the contents or steal\n confidential data. (CVE-2012-0455)\n \n Atte Kettunen discovered a use-after-free vulnerability in Firefox's\n handling of SVG animations. An attacker could potentially exploit this to\n execute arbitrary code with the privileges of the user invoking Firefox.\n (CVE-2012-0457)\n \n Atte Kettunen discovered an out of bounds read vulnerability in Firefox's\n handling of SVG Filters. An attacker could potentially exploit this to make\n data from the user's memory accessible to the page content. (CVE-2012-0456)\n \n Mike Brooks discovered that using carriage return line feed (CRLF)\n injection, one could introduce a new Content Security Policy (CSP) rule\n which allows for cross-site scripting (XSS) on sites with a separate header\n injection vulnerability. With cross-site scripting vulnerabilities, if a\n user were tricked into viewing a specially crafted page, a remote attacker\n could exploit this to modify the contents, or steal confidential data,\n within the same domain. (CVE-2012-0451)\n \n Mariusz Mlynski discovered that the Home button accepted JavaScript links\n to set the browser Home page. An attacker could use this vulnerability to\n get the script URL loaded in the privileged about:sessionrestore context.\n (CVE-2012-0458)\n \n Daniel Glazman discovered that the Cascading Style Sheets (CSS)\n implementation is vulnerable to crashing due to modification of a keyframe\n followed by access to the cssText of the keyframe. If the user were tricked\n into opening a specially crafted web page, an attacker could exploit this\n to cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0459)\n \n Matt Brubeck discovered that Firefox did not properly restrict access to\n the window.fullScreen object. If the user were tricked into opening a\n specially crafted web page, an attacker could potentially use this\n vulnerability to spoof the user interface. (CVE-2012-0460)\n \n Bob Clary, Christian Holler, Jesse Ruderman, Michael Bebenita, David\n Anderson, Jeff Walden, Vincenzo Iozzo, and Willem Pinckaers discovered\n memory safety issues affecting Firefox. If the user were tricked into\n opening a specially crafted page, an attacker could exploit these to\n cause a denial of service via application crash, or potentially execute\n code with the privileges of the user invoking Firefox. (CVE-2012-0461,\n CVE-2012-0462, CVE-2012-0464)\n","is_hidden":false,"release_packages":{"oneiric":[{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"11.0+build1-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/11.0+build1-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2012-0455","CVE-2012-0457","CVE-2012-0456","CVE-2012-0451","CVE-2012-0458","CVE-2012-0459","CVE-2012-0460","CVE-2012-0461","CVE-2012-0462","CVE-2012-0464"]}]}],"offset":69920,"limit":20,"total_results":79316}